Every time Cloudflare opens a new TLS 1.3 coection to an origin server, we have to make a guess: the protocol requires us to commit to a key agreement algorithm in the very first packet we send, before the origin has told us anything about itself or what it can support. If we guess right, the handshake completes in one round trip. Guess wrong, and the origin replies with a HelloRetryRequest, we start over, and the coection costs two round trips.For years, our guess was the same for every ori
ادامه مطلب
+ نوشته شده در ساعت 20:59 توسط generator
برچسب ها:
|
We’ve rewritten the module registry in workerd, the core open-source component of the Workers runtime, to be faster, more standards-compliant, and more closely aligned with Node.js' module registry.Over the past few years, we’ve been adding support for more and more Node.js runtime APIs. The Workers runtime now supports every stable API from Node.js that you might want to use in a serverless context, and these APIs are now enabled by default, letting you deploy even larger Node.js apps to C
ادامه مطلب
+ نوشته شده در ساعت 20:59 توسط generator
برچسب ها:
|
1.1.1.1 now validates DNSSEC signatures made with ML-DSA-44, a post-quantum signature algorithm standardized by the National Institute of Standards and Technology (NIST). This is a first step toward preparing DNSSEC for a future in which today’s signature algorithms are no longer secure.Cloudflare plans to achieve full post-quantum security by 2029. Much of the work so far has focused on TLS, but public-key cryptography is used in many other systems, including DNSSEC.While we began experimenting
ادامه مطلب
+ نوشته شده در ساعت 20:59 توسط generator
برچسب ها:
|
Today, we’re making Cloudflare CASB more powerful than ever by introducing automatic remediation policies. This means security teams can now design event-driven logic to revoke risky file shares and dispatch custom webhooks, without manual intervention.When we launched Cloudflare CASB, a cloud access security broker, we wanted to provide security teams complete visibility into the posture of their SaaS applications before misconfigurations became incidents. With a quick, clientless integration,
ادامه مطلب
+ نوشته شده در ساعت 20:59 توسط generator
برچسب ها:
|
As more teams — and now agents — build applications on Cloudflare's Developer Platform, having the right access controls is crucial to allow you to ship safely. After all, the last thing you want is for an agent to make a change in production, just because it was granted more access than it needs. Now, you can give a teammate or agent access to a specific Worker, so that they can only make changes to that application and no other resources in your account. Moreover, we’re giving you four ne
ادامه مطلب
+ نوشته شده در ساعت 20:59 توسط generator
برچسب ها:
|
Without proper controls, website owners have long faced a difficult tradeoff: allow your content to be used for AI training, or risk losing discoverability in search. That tradeoff exists because some of the largest organizations on the Inteet use mixed-use crawlers: a single crawler serving both search and AI training. Refuse one, and you refuse the other.Today, Cloudflare is aouncing a new Disallow AI Training setting that lets you easily stay indexed for search while refusing to let that
ادامه مطلب
+ نوشته شده در ساعت 20:59 توسط generator
برچسب ها:
|
A mode storefront can look perfectly healthy while malicious JavaScript works undeeath: siphoning affiliate revenue, hijacking searches and clicks, tampering with analytics, or asking a remote server what to execute next. Pages load, products appear, and checkout works — yet the browser may be quietly doing something the site owner never authorized.That is the blind spot our Client-Side Security machine leaing (ML) model is built to expose. This post follows four operations, spaing eight
ادامه مطلب
+ نوشته شده در ساعت 20:59 توسط generator
برچسب ها:
|
We introduced Python Workers two years ago, providing a way to run Python applications in the Cloudflare Workers runtime. Our goal was to make it as simple to write Workers in Python as it is in TypeScript, and to make the ecosystem of Python packages and frameworks “just work”.Today, Python Workers are now generally available (GA).What does GA mean? It means Python is now a first-class, fully supported language on the Cloudflare Developer Platform. You can bring the Python code, libraries, and
ادامه مطلب
+ نوشته شده در ساعت 20:59 توسط generator
برچسب ها:
|
Nothing is worse than testing out a change that works in staging, only to see it behave differently in production. That’s why we wanted to give you an environment that’s as close to production as possible — so you can battle-test your changes and make sure they behave exactly as you expect them to.Agents are helping us push more lines of code than ever before, and larger changes mean more ground needs to be tested ahead of release. Ideally, that testing is done in a way that doesn’t slow agents
ادامه مطلب
+ نوشته شده در ساعت 20:59 توسط generator
برچسب ها:
|
The response header, Vary, has been called “the ugliest part of HTTP that we haven't yet improved.” The same post describes it as a “horrible, kludgy mechanism” with “pretty abysmal interoperability” across intermediaries. That is usually where sensible engineers back away slowly with their hands raised. That’s not exactly an endorsement of Vary, but ugly doesn’t mean useless. One URL can have more than one correct response. A server might, for example, deliver different image formats to di
ادامه مطلب
+ نوشته شده در ساعت 20:59 توسط generator
برچسب ها:
|
On September 4, 2026, Oren Yomtov, a security researcher from Accomplish, responsibly reported a vulnerability affecting Cloudflare Containers and Cloudflare Sandboxes (which is built on Containers), through Cloudflare’s bug bounty program. Cloudflare has fully remediated the vulnerability, and we have no evidence that customer data has been compromised. This post was prepared in collaboration with Oren Yomtov and the Accomplish security research team, whose detailed report and controlled testin
ادامه مطلب
+ نوشته شده در ساعت 20:59 توسط generator
برچسب ها:
|
As a platform for helping build a better Inteet, Cloudflare helps tu ideas into real products and experiences around the world. Across communities and backgrounds, developers build with Cloudflare using the tools they love, shaping what comes next for the Inteet while inspiring, collaborating with, and teaching others.The community is where some of Cloudflare’s best moments happen. Students show their friends how to deploy Workers for the first time. Discord users answer questions from oth
ادامه مطلب
+ نوشته شده در ساعت 3:35 توسط generator
برچسب ها:
|
Since launching in 2020, Cloudflare Radar has provided one-of-a-kind insight into Inteet traffic on a global scale. The open data that Radar publishes from our global network is used by a variety of experts in different domains: human rights advocates, joualists, academic researchers, network operators, and more.Today, as part of Agents Week, Radar is beta-launching a new tool: Radar Researcher. Now, if you want to answer a question with Radar’s data, you can just ask in plain language and g
ادامه مطلب
+ نوشته شده در ساعت 3:35 توسط generator
برچسب ها:
|
The Inteet isn’t a single lane of traffic. For a long time, the rule of thumb in web security was that bots are bad, while humans are good. Of course, we’re far past this generalization. Humans can be fraudulent, and bots can be helpful at different levels. Site owners actively want some automated traffic to interact with our sites to make the Inteet functional and discoverable.To complicate things further, the line between "human" and "bot" is blurring more and more. Now
ادامه مطلب
+ نوشته شده در ساعت 3:35 توسط generator
برچسب ها:
|
We believe the Inteet must be a force for good, and that it requires a foundation of trust. Nowhere is that trust more critical than in public service. Govement agencies are the stewards of a nation’s most sensitive data. They protect national security, critical infrastructure, and the personal information of every citizen. Cloudflare’s mission is to help build a better Inteet. A key part of that mission is giving public sector agencies the best technology to stay secure, fast, and reliabl
ادامه مطلب
+ نوشته شده در ساعت 3:35 توسط generator
برچسب ها:
|